Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Those systems don't use the buggy aspect of the hardware (memory protection) at all. Instead, all code is run inside a VM which provides memory protection and process isolation - there is no 'native' code at all.

Not using the hardware memory protection provides a ~20% performance boost, which makes up for the ~20% overhead of running everything through VMs.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: